This Privacy Policy describes how cantscroll ("we," "us," or "our") collects, uses, and protects information when you use our software, including the cantscroll iOS application, the cantscroll macOS command-line tool, and our website at cantscroll.com (collectively, the "Service").
By using the Service, you agree to this Privacy Policy. If you do not agree, do not use the Service.
You can contact us at hello@cantscroll.com.
If you contact us at hello@cantscroll.com, we receive your email address and the content of your message. We use this only to respond to you.
If you join our waitlist at cantscroll.com, we collect only your email address and the timestamp of submission. This is used to notify you about product availability.
If you grant permission within the app, cantscroll may send anonymous error reports to help us diagnose technical issues. These reports contain:
- The type of error (e.g., "hook installation failed")
- The version of cantscroll installed
- The version of the coding agent that triggered the error
- The version of macOS or iOS
- A timestamp
Error reports do not contain: your name, email address, IP address, device identifier, the names of apps or websites you have blocked, your file paths, your code, your session contents, your browsing history, or any data that could identify you personally.
You can disable error reporting at any time in the app settings. You can view what data has been logged locally by running cantscroll report in your terminal.
If you purchase a subscription, Apple provides us with anonymous purchase verification through their StoreKit and RevenueCat. We receive:
- An anonymous transaction identifier
- Subscription status (active, expired, trial)
- Subscription tier (monthly or annual)
We do not receive your name, email, credit card details, or any other identifying information from Apple.
cantscroll does not collect:
- Personal identifiers (name, email except as noted above, phone number, address)
- Device identifiers (IDFA, IDFV, UDID, or any persistent device ID)
- Location data
- Contacts, photos, calendar, or any data from other apps
- Browsing history, search history, or web activity
- Audio, video, microphone, or camera data (except temporarily during QR code scanning, processed entirely on-device and never transmitted)
- Health, fitness, or biometric data
- Financial information beyond what Apple provides for subscription verification
We use the information we collect only for these purposes:
- Provide the Service: Anonymous error reports help us identify and fix bugs.
- Process subscriptions: Verify your subscription status across your devices.
- Respond to inquiries: Reply to support requests you initiate.
- Comply with law: Respond to legal requests when required by law.
We do not use your information for advertising, marketing without your explicit consent, profiling or behavioral tracking, selling to third parties, or sharing with data brokers.
Most cantscroll data lives only on your devices and never reaches our servers. This includes your blocked apps and websites selection (encrypted opaque tokens managed by Apple), your session history and statistics, your pairing keys between Mac and iPhone, and your audit log. We have no access to it.
The limited data we do collect is stored on:
- Cloudflare D1 (United States) — anonymous error reports and waitlist emails
- Cloudflare Workers (global edge network) — relay service for encrypted device communication
- Apple servers — subscription verification and APNs push delivery
- RevenueCat (United States) — subscription analytics
Error report data is retained for 90 days, then automatically deleted. Waitlist emails are retained until you unsubscribe or we close the waitlist. Subscription data is retained for the duration of your subscription plus 7 years for tax and accounting purposes, as required by law.
cantscroll uses Apple's FamilyControls API to block apps and websites on your iPhone. Apple's privacy design means:
- When you select apps or websites to block using the system picker, Apple returns to cantscroll an opaque token — a meaningless string that contains no identifying information.
- We literally cannot determine which specific apps or websites you have selected.
- The blocking is enforced by Apple's system, not by us.
- Even our backend systems cannot identify your selection.
This is by design and protects your privacy at the operating system level.
When your Mac and iPhone communicate to coordinate blocking, the communication is end-to-end encrypted using cryptographic keys generated on your devices during the pairing process. The keys never leave your devices.
When direct local network communication is unavailable, messages are routed through our relay service. The relay routes encrypted messages but cannot read them — we do not have the keys.
cantscroll uses the following third-party services:
- Apple Inc. — App Store distribution, StoreKit payments, FamilyControls, APNs push notifications. apple.com/privacy
- Cloudflare, Inc. — Hosting for relay service, database, and marketing site. cloudflare.com/privacypolicy
- RevenueCat, Inc. — Subscription management. revenuecat.com/privacy
We do not use Google Analytics, Facebook Pixel, advertising SDKs, behavioral tracking tools, or any third-party analytics that profile users.
Right to access: Email hello@cantscroll.com and we will tell you what data we have about you.
Right to delete: Email hello@cantscroll.com requesting deletion. We will delete what we can within 30 days. Subscription records required for tax compliance cannot be deleted but will be retained only as long as legally required.
Right to opt-out: You can disable error reporting in app settings at any time. You can unsubscribe from waitlist emails through the unsubscribe link in any email.
Right to portability: Your local cantscroll data can be exported via the cantscroll export terminal command at any time.
You have the right to know what personal information we collect, request deletion, and opt out of any sale of personal information. cantscroll does not sell personal information.
You have additional rights under the General Data Protection Regulation, including the right to lodge a complaint with a supervisory authority. Our legal basis for processing your data is your consent (for error reporting) and contractual necessity (for subscription processing).
cantscroll is not directed to children under 13. We do not knowingly collect information from children under 13. If you believe a child has provided us with information, contact hello@cantscroll.com and we will delete it.
cantscroll is operated from the United States. If you use the Service from outside the United States, your information will be transferred to and processed in the United States.
For EU and UK users, we rely on Standard Contractual Clauses or equivalent legal mechanisms to ensure your data is protected at a level equivalent to your home jurisdiction.
We implement reasonable security measures to protect your information, including end-to-end encryption for device communication, TLS encryption for all server connections, cryptographic verification of all software releases, and strict access controls on backend systems.
However, no system is perfectly secure. We cannot guarantee absolute security and you use the Service at your own risk.
We may update this Privacy Policy from time to time. When we do, we will update the "last updated" date at the top. If changes are material, we will notify users through the app or via email if you have provided one.
Continued use of the Service after changes constitutes acceptance of the new policy.